2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-7693 | MEDIUM | 5.3 | 5.0% | Jul 9, 2020 | Incorrect handling of Upgrade header with the value websocket leads in crashing of containers hosting sockjs apps. This ... |
| CVE-2020-5366 | MEDIUM | 6.5 | 1.8% | Jul 9, 2020 | Dell EMC iDRAC9 versions prior to 4.20.20.20 contain a Path Traversal Vulnerability. A remote authenticated malicious us... |
| CVE-2020-12424 | MEDIUM | 6.5 | 1.4% | Jul 9, 2020 | When constructing a permission prompt for WebRTC, a URI was supplied from the content process. This URI was untrusted, a... |
| CVE-2020-15073 | MEDIUM | 5.4 | 0.7% | Jul 8, 2020 | An issue was discovered in phpList through 3.5.4. An XSS vulnerability occurs within the Import Administrators section v... |
| CVE-2020-2031 | MEDIUM | 4.9 | 1.1% | Jul 8, 2020 | An integer underflow vulnerability in the dnsproxyd component of the PAN-OS management interface allows authenticated ad... |
| CVE-2020-1982 | MEDIUM | 4.8 | 0.4% | Jul 8, 2020 | Certain communication between PAN-OS and cloud-delivered services inadvertently use TLS 1.0, which is known to be a cryp... |
| CVE-2020-7140 | MEDIUM | 6.1 | 0.8% | Jul 8, 2020 | A security vulnerability in HPE IceWall SSO Dfw and Dgfw (Domain Gateway Option) could be exploited remotely to cause a ... |
| CVE-2020-15600 | MEDIUM | 6.5 | 1.9% | Jul 7, 2020 | An issue was discovered in CMSUno before 1.6.1. uno.php allows CSRF to change the admin password. |
| CVE-2020-8916 | MEDIUM | 5.5 | 0.3% | Jul 7, 2020 | A memory leak in Openthread's wpantund versions up to commit 0e5d1601febb869f583e944785e5685c6c747be7, when used in an e... |
| CVE-2020-15599 | MEDIUM | 6.1 | 2.1% | Jul 7, 2020 | Victor CMS through 2019-02-28 allows XSS via the register.php user_firstname or user_lastname field. |
| CVE-2020-15095 | MEDIUM | 4.4 | 0.4% | Jul 7, 2020 | Versions of the npm CLI prior to 6.14.6 are vulnerable to an information exposure vulnerability through log files. The C... |
| CVE-2020-15035 | MEDIUM | 5.4 | 0.5% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15034 | MEDIUM | 5.4 | 0.6% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15033 | MEDIUM | 5.4 | 0.6% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15032 | MEDIUM | 5.4 | 0.6% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15031 | MEDIUM | 5.4 | 0.6% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15030 | MEDIUM | 5.4 | 0.6% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15029 | MEDIUM | 5.4 | 0.6% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15028 | MEDIUM | 5.4 | 0.6% | Jul 7, 2020 | NeDi 1.9C is vulnerable to a cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary ... |
| CVE-2020-11882 | MEDIUM | 6.1 | 1.0% | Jul 7, 2020 | The O2 Business application 1.2.0 for Android exposes the canvasm.myo2.SplashActivity activity to other applications. Th... |
| CVE-2020-15037 | MEDIUM | 5.4 | 0.5% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15036 | MEDIUM | 5.4 | 0.5% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15584 | MEDIUM | 5.5 | 0.3% | Jul 7, 2020 | An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can trigger an out-of-bounds access a... |
| CVE-2020-15583 | MEDIUM | 5.5 | 0.2% | Jul 7, 2020 | An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. StickerProvider allows dire... |
| CVE-2020-15582 | MEDIUM | 5.5 | 0.3% | Jul 7, 2020 | An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (Exynos 7885 chipsets) software. The Bluetooth... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now